← back
CVE-2023-45614criticalCWE-120

CVE-2023-45614

28Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackcvss 9.8epss 2.1%
exploitation probability
2.1%top 20% of all CVEs
observed exploitation
nono source reports it
In short

A buffer overflow flaw in Aruba's access point management protocol allows attackers to send specially crafted packets to port 8211 and execute malicious code on the device without needing a password. This is critical because it grants complete control over the access point.

Technical detail

Unauthenticated remote buffer overflow in PAPI (UDP port 8211) service allows arbitrary code execution with elevated privileges on the underlying OS. The vulnerability is triggered by crafted packet payloads that overflow stack or heap buffers in the CLI service, requiring no prior authentication or user interaction. Successful exploitation results in complete system compromise.

Summary generated and translated by AI from the official description.
There are buffer overflow vulnerabilities in the underlying CLI service that could lead to unauthenticated remote code execution by sending specially crafted packets destined to the PAPI (Aruba's access point management protocol) UDP port (8211). Successful exploitation of these vulnerabilities result in the ability to execute arbitrary code as a privileged user on the underlying operating system.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H